Beveiligingsadvies
CVE-2019-16391
CVE-kwetsbaarheidsdetails - eXtreme Datacenter Security Operations
Beschrijving
SPIP before 3.1.11 and 3.2 before 3.2.5 allows authenticated visitors to modify any published content and execute other modifications in the database. This is related to ecrire/inc/meta.php and ecrire/inc/securiser_action.php.